South Korea’s PIPC fined KT Corporation KRW 53.979 billion after an internal network compromise and data protection failures exposed subscriber information and enabled fraudulent mobile payments. The investigation also found a separate BPFDoor malware infection on KT servers and cited evidence deletion that may have hidden the full extent of the breach. #KTCorporation #PIPC #BPFDoor #RedMenshen #LGUplus
Keypoints
- PIPC fined KT Corporation KRW 53.979 billion for data protection violations.
- A compromised femtocell let attackers intercept subscriber traffic for nearly 11 months.
- The breach exposed data of 16,647 KT subscribers and led to fraudulent mobile payments.
- PIPC also found 38 KT servers infected with BPFDoor malware.
- The agency said KT deleted logs and failed to properly report the incident.